CVE-2005-2296: Medium severity Yabb Yabb vulnerability
Published Jul 17, 2005
·Updated
YabbSE 1.5.5c allows remote attackers to obtain sensitive information via a direct request to ssiexamples.php, which reveals the path.
Affected Software
1 affected component
Yabb Yabb=1.5.5c
Event History
Jul 17, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2296?
The severity of CVE-2005-2296 is considered medium due to its potential to expose sensitive path information.
2
How do I fix CVE-2005-2296?
To fix CVE-2005-2296, restrict access to the ssi_examples.php file or remove it entirely from the server.
3
What type of vulnerability is CVE-2005-2296?
CVE-2005-2296 is an information disclosure vulnerability that allows unauthorized access to system paths.
4
Who is affected by CVE-2005-2296?
CVE-2005-2296 affects users of YaBB version 1.5.5c, particularly those running it without proper access restrictions.
5
Can CVE-2005-2296 be exploited remotely?
Yes, CVE-2005-2296 can be exploited remotely by attackers who send direct requests to the vulnerable script.